
VK Link Target Controller Security & Risk Analysis
wordpress.org/plugins/vk-link-target-controllerRedirect your visitors to another page than the post content when they click on the post title.
Is VK Link Target Controller Safe to Use in 2026?
Generally Safe
Score 100/100VK Link Target Controller has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "vk-link-target-controller" v1.8.0.1 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries, having no file operations, and making no external HTTP requests. The presence of nonce checks and capability checks, even if not universally applied, are also positive indicators. The plugin also has no recorded history of vulnerabilities, which suggests a generally well-maintained codebase.
However, significant concerns arise from the attack surface analysis. The plugin exposes two AJAX handlers, and critically, both of them lack authentication checks. This means that any authenticated user, including those with low privileges, could potentially trigger these handlers, leading to unintended actions or information disclosure. Furthermore, the static analysis indicates that only 50% of output is properly escaped, which could open the door to Cross-Site Scripting (XSS) vulnerabilities if sensitive data is rendered without sufficient sanitization.
In conclusion, while the plugin benefits from a clean vulnerability history and secure handling of database interactions, the unprotected AJAX endpoints and partially unescaped output represent notable security weaknesses. The lack of broader authentication and sanitization on these entry points increases the risk profile, despite other positive security attributes.
Key Concerns
- Unprotected AJAX handlers
- Partially unescaped output
VK Link Target Controller Security Vulnerabilities
VK Link Target Controller Code Analysis
Output Escaping
VK Link Target Controller Attack Surface
AJAX Handlers 2
WordPress Hooks 13
Maintenance & Trust
VK Link Target Controller Maintenance & Trust
Maintenance Signals
Community Trust
VK Link Target Controller Alternatives
Link Library
link-library
The purpose of this plugin is to add the ability to output a list of link categories and a complete list of links with notes and descriptions.
List Children
list-children
Use an HTML comment to list links of the current page's children or siblings.
Delink Pages
delink-pages
This plugin will allow you to specify certain pages to not be linked when wp_list_pages() is used in a theme.
WP-Partner
wp-partner
The purpose of this plugin is to add the ability to output a list of link categories and a complete list of links with notes and descriptions.
Recent Posts Markdown Generator
recent-posts-markdown
Generate a Markdown List of links to your most recent WordPress Posts.
VK Link Target Controller Developer Profile
8 plugins · 241K total installs
How We Detect VK Link Target Controller
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/vk-link-target-controller/js/script.min.js/wp-content/plugins/vk-link-target-controller/js/admin-link-dialog.js/wp-content/plugins/vk-link-target-controller/js/script.min.js/wp-content/plugins/vk-link-target-controller/js/admin-link-dialog.jsvk-link-target-controller/js/script.min.js?ver=vk-link-target-controller/js/admin-link-dialog.js?ver=HTML / DOM Fingerprints
data-vk-ltc-setting-pagevkLtc